Privacy Policy
Happy ERP is an online-shop management system (orders · stock · chat · delivery · reports) provided at happyerp.la. This page states plainly what we collect · what we use it for · who it passes to · how long we keep it · and how to have it deleted.
Customer data (name · phone · address · messages) belongs to the shop using the system — the shop is the data controller. Happy ERP is a processor acting on the shop's instructions. If you are a customer of a shop and want your data deleted, contact that shop first, or contact us (section 8).
1What we collect
a. From shops that sign up
- Email · user name · password stored hashed with bcrypt (we cannot read the real password)
- Shop name · shop phone · the bank account the shop enters itself (used to print QR codes and receipts)
- Products · prices · cost · stock · expenses · reports
b. The shop's customer data (entered by the shop, or by the customer when ordering)
- Name · phone · delivery address (village/district/province) · notes
- Order lines · totals · payment method · delivery status
- Transfer slip images the customer uploads
- Star ratings and reviews · loyalty points
- Notes and flags the shop records about a customer — free-text notes the shop types, a "blocklist" flag, and a risk score the system computes from the customer's own order and delivery history (used only inside that shop · never shared with another shop · never decides for the shop)
- Shopping carts left unfinished on the web storefront (used for the reminder in section 2)
- Affiliates/referrers the shop adds: name · phone · affiliate code
- Chat messages (from Facebook Messenger · post comments · the web storefront chat)
- Push-notification subscriptions — the device token only, never used for tracking
c. From Facebook (only for shops that connect it themselves)
- The list of Pages you manage · Page name and Page id
- The Page access token (kept on the server, never sent to any browser)
- Messages and comments customers send to your Page
We do not collect: friend lists · personal posts · any profile field beyond the name attached to a message.
2What we use it for
- The core service: taking orders · deducting stock · printing labels · tracking parcels · reports
- Replying to customers and notifying them of order status (Messenger · web chat · Web Push)
- Reminding a customer about an unfinished cart — one automatic message about 30 minutes after they stop, on the web storefront chat only (never sent through Messenger)
- Helping the shop avoid fake or refused orders using the risk score and the shop's own flags
- Checking transfer slips against the bank (to catch forged slips)
- Calculating staff commission · affiliate commission · loyalty points
- Security (access logs · rate limiting)
We do not sell your data, and one shop's data is never shown to another shop.
3AI chat assistance
When a shop switches on "Happy AI replies", the latest chat message plus that shop's product, price and stock data is sent to an AI service (Claude by Anthropic) to draft an answer. If the person asking already has an order, their own order is sent too (order number · status · total · tracking number) so questions like "where is my parcel" can be answered. Not sent: product cost · other customers' orders · bank details. If the shop switches this off, nothing is sent.
4Third parties the data passes through
| Who | What | Why |
|---|---|---|
| Meta (Facebook) | Replies sent back · Purchase events (if the shop enables CAPI) | Deliver replies to customers · measure ads |
| Anthropic (Claude) | Chat message + product data (only while AI is on) | Draft a reply for the shop |
| Other systems the shop connects itself (API v1 · outbound webhooks) |
Orders including customer name and phone | The shop pulls them into its own accounting or delivery system — sent only to the address the shop sets, and the shop can turn it off at any time |
| Bank (BCEL OneProof) | The QR code inside a slip | Verify the transfer really happened |
| Telegram | Order summaries and alerts to the group the shop configures | Notify the shop owner |
| Google Drive | Backups, already encrypted | Protect against data loss |
Beyond this we disclose data only where the law requires it.
5How long we keep it
- Shop and order data — while the account is open (shops need it for accounting and tax history)
- Backups — 14–30 days, then deleted automatically
- Security logs (audit) — 365 days, then deleted automatically
- Facebook messages in the server queue — deleted 30 days after the app has collected them (the copy the shop sees in its inbox stays with the shop until the shop deletes it or closes the account)
- Records of events sent to Meta (CAPI) — 90 days
- Account closed → data deleted within 30 days (except where law requires retention)
6Security
- HTTPS everywhere · passwords hashed with bcrypt
- Tracking and affiliate links carry a digital signature — unguessable, and each shows only its own data
- Backups are encrypted before they leave the machine
- Every event from Facebook has its signature checked (no signature = rejected)
No system is 100% secure — if a breach affects you we will tell you promptly.
7Cookies and local storage
We use a session cookie (sign-in) and localStorage (a local copy of the shop data so pages open fast — saving still needs a connection · remembering a customer's name and address on the customer's own device). No advertising cookies and no third-party trackers.
8Requesting deletion or a copy
How to request deletion
- Shops using the system: in the app → Settings → Team & account tab → Account → Request account closure, or email us from the address you signed up with
- Customers of a shop: contact the shop you bought from (the shop owns the data), or email us with the shop name and the phone number used to order
- Disconnecting Facebook: in the app → Settings → Connections tab → Connections →
Disconnect, or remove access at
facebook.com/settings?tab=business_tools— the tokens are deleted and messages stop arriving
You can reach us by email or by phone/WhatsApp +856 20 5226 6557 (see section 11). We act within 30 days and confirm back. You may also request a copy of your data (shops can export it themselves from inside the app).
9Children
This service is for commerce — it is not designed for people under 18 and we do not knowingly collect children's data.
10Changes
For a material change we will give notice in the app or by email at least 7 days before it takes effect, and change the date at the top of this page.
11Contact
Email: support@happyerp.la
Phone/WhatsApp: +856 20 5226 6557
Web: happyerp.la